Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VPN with IPSEC

Status
Not open for further replies.

Rinnt

MIS
Feb 11, 2002
181
US
Hi guys,

I need to setup a VPN connection from a mandrake 8.2 box and a Win98 client running SSH Sentinel. Unfortunately I have been having a rather rough time… I’ve read a few docs but unfortunately not all of it is clear. Recently I came across this very user friendly document:


This document is ideal because it provides step by step instructions from downloading the source to the final stages (plus the PDF format is a nice look). The downside is that it’s for an older version of Red Hat. I’ve actually thought about getting Red Hat as a last resort, but maybe you guys can enlighten me as I’d like to stay with Mandrake as much as possible…

Refering to that PDF link above, I substituted the first two chapters for

# Urpmi freeswan

and

downloading the x509 patch from
On 3.2 it says to copy the cacert.pem to /etc/ipsec.d/cacerts/<filename>. But since there is no /etc/ipsec.d in mdk 8.2, I copied the file to /usr/lib/ipsec. (I also noticed in 8.2 there is /etc/freeswan directory, but that only has the ipsec.conf and ipsec.secrets file.) I also noticed that when they list /usr/share/ssl etc, it should be /usr/lib/ssl and so forth.

Finally I try to setup the keys/certs with SSH sentinel. The request goes fine, the signing appears fine, but when I try to import the final signed cert, SSH doesn’t seem to trust it.

Can you guys see where I might be screwing up? Also, can you recommend a good step-by-step newbie how to that explains this mdk8.2/ssh sentinel setup that I am trying to accomplish?

Thanks in advance!
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top